[wp-trac] [WordPress Trac] #11271: User Edit page only displays info for current logged in user

WordPress Trac wp-trac at lists.automattic.com
Tue Dec 1 01:06:57 UTC 2009


#11271: User Edit page only displays info for current logged in user
--------------------------+-------------------------------------------------
 Reporter:  cnorris23     |       Owner:  westi    
     Type:  defect (bug)  |      Status:  accepted 
 Priority:  high          |   Milestone:  2.9      
Component:  Users         |     Version:  2.9      
 Severity:  blocker       |    Keywords:  has-patch
--------------------------+-------------------------------------------------

Comment(by azaozz):

 Think we should leave this for 3.0. We may need both user IDs, the
 currently logged in user and another user, not only on the Edit User
 screen and resetting or changing the global `$user_id` that was used for
 this until now would likely affect some plugins.

 We could also explore setting the currently logged in user's ID as a
 constant to avoid similar situations in the future and perhaps increase
 security a bit.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/11271#comment:9>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list